Password configuration matrix (Windows)
When the preferred method of password-handling is determined, review the following steps to set the keywords and parameters in the various profiles.
Detailed information about password-handling methods is available in the Determining the IBM Storage Protect™ password method topic.
After you select the suitable password-handling
method, follow this configuration matrix to set the keywords and parameters.
Proceed as indicated by the step number.
| Step | Profile/Action | Parameter | Password | ||
|---|---|---|---|---|---|
| No | Manual | Set by IBM Storage Protect | |||
| 1 | IBM Storage Protect admin | AUTHENTICATION EXPIRATION PERIOD (see note 1) | OFF | ON n days (see note 2) | ON n days |
| 2 | server.opt | PASSWORDACCESS PASSWORDDIR (see note 5) NODENAME |
Unavailable | PROMPT Unavailable Unavailable |
GENERATE path nodename |
| 3 | IBM Storage Protect admin | UPDATE NODE (see notes 1,6) | Unavailable. | password | password |
| 4 | Data Protection for SAP profile initSID.utl | For each SERVER statement, specify: PASSWORDREQUIRED ADSMNODE | NO nodename | YES nodename | NO (see note 4) |
| 5 | Data Protection for SAP command line | Specify in each SERVER statement: |
Unavailable | password (see note 1) | password |
| 5 | Data Protection for SAP profile initSID.utl | For each SERVER statement, specify:PASSWORDREQUIRED ADSMNODE | NO nodename |
YES nodename |
NO (see note 4) |
| 6 | Command line | backom -c password |
Unavailable | password (see notes 3,7) | password (see notes 3,7) |
Note:
- See IBM Storage Protect documentation.
- If you are using manual password generation during testing, make sure that the expiration period is set to an appropriate time.
- For an initial setup, this password must be the same password that is specified when the node was registered to IBM Storage Protect. The password must be changed first on the IBM Storage Protect server and then on Data Protection for SAP.
- ADSMNODE must not be set when PASSWORDACCESS generate is set.
- The users
SIDadmandsapserviceSIDmust have read and write permission for thepathspecified in the PASSWORDDIR option in the IBM Storage Protect client options file. - This step is only necessary if the password is expired (manual-handling only) or must be changed on the IBM Storage Protect server.
- A password must be entered for each server statement in the Data Protection for SAP profile.